Type Confusion in MongoDB Server - CVE-2026-18701
Published: August 18, 2026
Vulnerability details
The vulnerability allows a remote user to cause a denial of service.
The vulnerability exists due to access of resource using incompatible type in the query subsystem when processing a specially formed query filter. A remote user can submit a specially formed query filter to cause a denial of service.
The issue can cause the server process to terminate unexpectedly.